Network Analyzer Capture Setup#

To capture the initial joining process before CBKE, first determine the device's preconfigured link key (either the unique one generated from the installation code as described in Application Setup (Run Time) Prior to Joining a New Device to the HAN or the global one if using SE Security Test mode). Enter this code into Network Analyzer using either of the two methods described below before attempting to join the HAN.

To capture the encrypted SE traffic after CBKE/registration has been performed, determine the CBKE-authorized link key by querying either the HAN device or the ESI. If the serial CLI is still available, you can use the "keys print" command. If you are using the stack API directly, use the emberGetKey() API. Enter the discovered key into Network Analyzer (see the two methods below) after CBKE completes; remember that this key is unique for each instance of CBKE, even for the same pair of devices.

You can enter the key into Network Analyzer through the main list of keys at Window > Preferences > Network Analyzer > Decoding > Security Keys. Keys must be entered here before beginning a capture session, else they will not be used for decryption.